Recent Advisories

Severity ID Title Vendor Product Date Type
NONE HACKREAD:C88ABD...

Hackers Use Fake FIFA World Cup 2026 T-Shirt Offers to Spread Voidrift Malware_HACKREAD:C88ABDC30C1E80F03703CD1ACBFC49F0

A fake FIFA World Cup 2026 T-shirt giveaway scam is spreading Voidrift malware through personalized emails using company logos and trusted websites...

N/A N/A HACKREAD
NONE THN:5DAB0877EE6...

Silent Swap Crypto Clipper Uses Fake Google Notes Extension to Replace Wallet Addresses_THN:5DAB0877EE6A2238A848D066E5E917B7

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgfz8WYO9wONzogh2V8g9VorZ8Ab_nAUZMD7rOM9xrVUhg3cbKGA5zc73PGQiAkbsNgY-qbm2AFAUjBdeMcpe...

N/A N/A THN
CRITICAL 9.8 THN:18D5B5F2FBD...

Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App Endpoints_THN:18D5B5F2FBD829B5E2123067D35CAF01

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiA2GvsvmPnHZF-e1GDbhOVW4DxQZr79HzSMLp7-YKaA9DC-V2fVo6cmBig0bxUxWjK0Kz1mTm2Cmg6CrjaKg...

N/A N/A THN
CRITICAL 10 8AC491E4-591B-

Exploit for Improper Access Control in Widgetfactorylimited Jce_8AC491E4-591B-5C56-8013-7E0DC7148722

CVE-2026-48907 — Joomla JCE Unauthenticated RCE Lab PSsec Educational security research lab for CVE-2026-48907. --- Overview CVE-2026-48907 is a cr...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 539AF710-2749-

Exploit for Command Injection in Php_539AF710-2749-5930-885F-F827F584855E

CVE-2012-1823 - PHP CGI Argument Injection Remote Code Execution RCE Severity: Critical CVSS 9.8 CVE: CVE-2012-1823 Published: May 11, 2012 Affecte...

N/A N/A GITHUBEXPLOIT
NONE 62277C7B-7BD2-

cossacks-back-to-war-exploit_62277C7B-7BD2-58C4-91D7-0A8667D8F49A

⚠️ Disclaimer The code in this repository is provided as-is for educational and defensive security research purposes only. - Use it only on systems...

N/A N/A GITHUBEXPLOIT
HIGH 7.8 289C51DB-789E-

Exploit for Reliance on Untrusted Inputs in a Security Decision in Microsoft_289C51DB-789E-5BBC-869B-291AC527B641

CVE-2026-21509 — Microsoft Office OLE Security-Feature Bypass Research writeup by Sentinel AI Defense. Defensive analysis only — no working exploit...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 47950A77-F41D-

Exploit for CVE-2026-49869_47950A77-F41D-5310-A96F-B4B94D1E4D2F

Kestra CVE-2026-49869 / CVE-2026-53576 Scanner Scans Kestra instances for the endsWith"/configs" authentication filter bypass. Kestra's Authenticat...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.9 8F43F4B9-6528-

Exploit for Authorization Bypass Through User-Controlled Key in Langflow_8F43F4B9-6528-5606-8D84-E5AAE03367BB

CVE-2026-55255 - Langflow IDOR in /api/v1/responses Executive Summary This repository contains a local Docker lab for reproducing and validating CV...

N/A N/A GITHUBEXPLOIT
NONE THN:DF592ACB420...

GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection Risks_THN:DF592ACB420EC87D0E4FD2A165A6638B

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgR59EidY6iMYv3s9bikjIxpj6_YTaUIesrZ3MyD9OqUbOk262aDW7bCArqr-IjT9CUQUSzE2F_knKKvs4bIJ...

N/A N/A THN